At present,as the computer is connected to the Internet more and more,the application of computer networks becomes increasingly diverse.The factors threatening the security of computer networks are becoming increasingly complex.Vocational college campus network is also facing many network security issues.In order to protect the professional college campus network,network security measures means a lot,such as encryption,firewalls,intrusion detection and other security technologies and how these products efficiently deployed to vocational college campus network.You need the guidance of network security model.A low level of traditional automation P2DR dynamic adaptive network security model requires human involvement to complete security incident response。This thesis is based on the model in PPDR,proposing a new more proactive P2DWR2(L + F)network security model.It is based on the PPDR adds warning function(W),learning and feedback functions(L + F),elaborating the key achieving technology model,and realizing P2DR model improvements.It has also studies the current mainstream network security technologies such as firewalls,virtual private network(VPN),intrusion detection,data backup technology,identity authentication,combined with features of network system,from the management,the application layer,the system layer,transport layer,network layer,data link layer,physical layer,seven aspects,a detailed analysis of the security situation and defects in vocational schools campus network。Whether P2DWR2(L + F)security model is more adapted to the College campus network than P2DR model needs to apply to the actual case,and verify them.The final chapter of this article is on the basis of P2DWR2(L + F)security model,applying to the actual design and construction of a vocational college in the campus network.Vocational college campus network is divided into following five security zone:the physical layer network devices,business applications layer,Network distribution/core layer,network layer access layer and network edge.Using different network security technology and products,they form a joint collaboration at all levels and a dynamic closed-loop。P2DWR2(L + F)security model is the product of theory,requiring a corresponding tailored hardware and a wide range of applications to be tested.In this instance,the existing hardware can be used limitedly after testing in a vocational college.All in all,Network performance testing is made after the application of security model P2DWR2(L + F).The result was satisfactory. |